[NeurIPS 2024] Official implementation for "AgentPoison: Red-teaming LLM Agents via Memory or Knowledge Base Backdoor Poisoning"
☆230Jun 17, 2026Updated last month
Alternatives and similar repositories for AgentPoison
Users that are interested in AgentPoison are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- [USENIX Security 2025] PoisonedRAG: Knowledge Corruption Attacks to Retrieval-Augmented Generation of Large Language Models☆285Jan 27, 2026Updated 5 months ago
- [NeurIPS'24] RedCode: Risky Code Execution and Generation Benchmark for Code Agents☆85Apr 24, 2026Updated 2 months ago
- Agent Security Bench (ASB)☆271Apr 16, 2026Updated 3 months ago
- Code&Data for the paper "Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents" [NeurIPS 2024]☆115Sep 27, 2024Updated last year
- ☆24Jan 6, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆33Feb 27, 2025Updated last year
- Memory Injection Attacks on LLM Agents via Query-Only Interaction☆29Feb 10, 2026Updated 5 months ago
- Source code for the ACL'2025 paper titled "Unveiling privacy risks in llm agent memory"☆34Dec 2, 2025Updated 7 months ago
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆670Jun 2, 2026Updated last month
- ☆152Jul 2, 2024Updated 2 years ago
- ICL backdoor attack☆17Nov 4, 2024Updated last year
- [EMNLP 2023] Poisoning Retrieval Corpora by Injecting Adversarial Passages https://arxiv.org/abs/2310.19156☆51Dec 14, 2023Updated 2 years ago
- This repository provides a benchmark for prompt injection attacks and defenses in LLMs☆465Oct 29, 2025Updated 8 months ago
- PISmith: Reinforcement Learning-based Red Teaming for Prompt Injection Defenses☆21Updated this week
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆11Jul 2, 2026Updated 2 weeks ago
- ☆66Jun 18, 2026Updated last month
- ☆47Dec 9, 2025Updated 7 months ago
- [ECCV'24 Oral] The official GitHub page for ''Images are Achilles' Heel of Alignment: Exploiting Visual Vulnerabilities for Jailbreaking …☆39Oct 23, 2024Updated last year
- ☆191Oct 31, 2025Updated 8 months ago
- ☆31Sep 15, 2024Updated last year
- [ICLR 2024] The official implementation of our ICLR2024 paper "AutoDAN: Generating Stealthy Jailbreak Prompts on Aligned Large Language M…☆453Jan 22, 2025Updated last year
- [ICML 2024] Agent Smith: A Single Image Can Jailbreak One Million Multimodal LLM Agents Exponentially Fast☆123Mar 26, 2024Updated 2 years ago
- RAP: Retrieval-Augmented Planning with Contextual Memory for Multimodal LLM Agents☆25Aug 23, 2024Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- [NeurIPS 2025] BackdoorLLM: A Comprehensive Benchmark for Backdoor Attacks and Defenses on Large Language Models☆316Mar 13, 2026Updated 4 months ago
- Comprehensive Assessment of Trustworthiness in Multimodal Foundation Models☆29Mar 15, 2025Updated last year
- [ICLR24] Official Repo of BadChain: Backdoor Chain-of-Thought Prompting for Large Language Models☆56Jul 24, 2024Updated last year
- (NeurIPS 2025) Official implementation for "MJ-Bench: Is Your Multimodal Reward Model Really a Good Judge for Text-to-Image Generation?"☆51Jun 3, 2025Updated last year
- code of paper "Defending Against Alignment-Breaking Attacks via Robustly Aligned LLM"☆14Nov 17, 2023Updated 2 years ago
- ☆18Jun 15, 2021Updated 5 years ago
- Official Repo of Your Agent May Misevolve: Emergent Risks in Self-evolving LLM Agents☆90Jun 2, 2026Updated last month
- [USENIX Security 2025] Topic-FlipRAG: Topic-Orientated Adversarial Opinion Manipulation Attacks to Retrieval-Augmented Generation Models☆15Jun 21, 2025Updated last year
- [AAAI 2026] Official implementation of "Joint-GCG: Unified Gradient-Based Poisoning Attacks on Retrieval-Augmented Generation Systems".☆18Mar 23, 2026Updated 3 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- ☆39May 29, 2026Updated last month
- A reading list for large models safety, security, and privacy (including Awesome LLM Security, Safety, etc.).☆2,019Jun 17, 2026Updated last month
- Official implementation of the WASP web agent security benchmark☆98Apr 13, 2026Updated 3 months ago
- Code to generate NeuralExecs (prompt injection for LLMs)☆27Oct 5, 2025Updated 9 months ago
- [ArXiv 2025] Imperceptible Jailbreaking against Large Language Models☆25Oct 7, 2025Updated 9 months ago
- [S&P 2026] SoK: Evaluating Jailbreak Guardrails for Large Language Models☆44Dec 17, 2025Updated 7 months ago
- ☆40Oct 2, 2024Updated last year